Analyze the provided memory file for malicious activity

Assignment Help Computer Network Security
Reference no: EM132292281

GOAL:

Analyze the provided memory (KobayashiMaru.vmem) file for malicious activity.

You can use tools designed for memory forensics if you wish to analyze the memory and Volatility or Autopsy. However, at a minimum you should answer and provide proof screenshots and/or reasoning to these questions.

1. What operating system is the computer using? What version?

2. How much RAM is included in the analysis?

3. View the running processes. Does this look like your average box? a. What processes look abnormal? What makes them abnormal?

4. Can you find user account names? Passwords?

5. View the Dynamically Linked Libraries. Does this look like your average box? a. What DLLs look abnormal?

6. Can you associate any Processes (PIDs), DLLs, and executables?

7. View the files associated with the processes. a. Do any files or file paths look abnormal? Reference the file path if available.

8. Explain what you think happened to this box.

Attachment:- Activity.rar

Verified Expert

Operation System is all about the working, as per the given question provided, answers for the Linux OS and the windows OS product as been given. this question are related to the internal functionality of the operating system also based on the feathers of the operating system appropriate answers has been provided.

Reference no: EM132292281

Questions Cloud

Is traditional marketing losing its position to E-marketing : Is traditional marketing losing its position to E-marketing? Give reasons for your position.
Packet switching virtual circuit and circuit switching : Determine the isotropic free space loss at 4 GHz for the shortest path to a synchronous satellite from earth -
Describing your educational and career goals : Describing your educational and career goals, why you want to attend college, and the advantages of attending the coummunity college of baltimore county
Consumer survey about grocery shopping : Need to fill out 12 copies of this Questionnaire that is attached and using SPSS to fill out the template with answers. Consumer survey about grocery shopping
Analyze the provided memory file for malicious activity : Analyze the provided memory file for malicious activity - What operating system is the computer using? What version - How much RAM is included in the analysis
Review article - cybercrime : Review this article - In the recent cybercrime background, many hackers are using advanced and progressively advanced methods of penetrating systems
Review the article - cybersecurity : You need to review the article - Many organizations have stepped up their games when it comes to securing their network, and many have invested in cybersecurity
How do the rhetorical techniques used : Discuss the rhetorical techniques-voicing, tone, imagery, symbolism, rhetorical appeals, etc.-that the authors of the two works use
Write a secure peer-to- peer file-sharing system : CS-452 - Project - implement a system which enables a group of users to chat securely. All users are registered with the chat server. When the user wants

Reviews

Write a Review

Computer Network Security Questions & Answers

  Define three broad classes of controls and three categories

Define security control or safeguard. List and briefly define the three broad classes of controls and the three categories each can include.

  Explain what fiona meant using the concept of the business

Fiona told her friend that she is very fortunate as the slow-down in the economy has not decreased sales in her grocery store by much

  What initial actions should incident response policy specify

What initial actions should the incident response policy specify? What default decision do you recommend regarding reporting this incident to appropriate CERT?

  Mobile devices security

Mobile Devices Security

  Identify one method a forensic investigator may use

Identify one method a forensic investigator may use to identify a potential RAT program? How malware may try to hide itself on an asset.

  Discuss specific characteristics of global botnets

Discuss Six specific characteristics of global Botnets (such as purpose, size, attack method, attribution, etc.), and describe how these characteristics have emerged, changed, or evolved over the past 5-10 years.

  Communicate together securely

There are two offices in different locations that must communicate together securely.

  Discuss about privacy preserving data mining methods

"Privacy preserving data mining" is designed to ensure privacy of individuals while performing data mining.

  What key elements are included in a x.509 certificate

What key elements are included in a X.509 certificate? What is the role of a CA in X.509? What different types of X.509 certificates exist?

  Identify part of attack that exploited a local vulnerability

Identify one part of the attack that exploited a local vulnerability. This is the most common type of vulnerability exploited in the attack.

  Evaluate the authentication protocols and methodologies

Evaluate the authentication protocols and methodologies within the wired and remote access environment and suggest improvement to secure authentication for GFI.

  Determine what the risk to an organisation is

Determine what the risk to an organisation is, you need to know what the problems could be - how it performs its attack and the mitigation strategies. The risk to an organisation using vulnerable systems should also be determined.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd